The package is small but clearly identified, licensed, documented, and tested, with no install-time scripts. Its lack of security tooling and policy leaves less assurance for a Stripe integration.
62%
Total Score
50
83
75
Only two releases have appeared since September 2024, with no release in about 19 months; this suggests maintenance may have stopped, though the package may be intentionally stable.
The repository recorded zero commits and zero active maintainers in the last three months, reinforcing the concern that current maintenance has stalled.
Composer build tooling is present, but no security-scanning tools were detected, leaving a modest verification gap.
The repository has no security policy, which is a transparency gap for a package handling Stripe webhook testing, although this does not by itself indicate unsafe code.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/cashier Version ^14.0|^15.0 | — | — |
stripe/stripe-php Version ^14.0|^15.0|^16.0 | — | — |
illuminate/support Version ^11.0|^12.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.